infsh-cli
Run AI Apps from the inference.sh CLI
Teams need one command path for many cloud AI models. This skill helps users find apps, prepare inputs, run jobs, and track results with the belt CLI.
Do not auto-install this skill.
The canonical policy requires operator review before any installation action.
Install with my Agent
Copy this request to your Agent. It includes the canonical Skill page and manifest.
Review the Skillstore skill "infsh-cli" from https://skillstore.io/skills/qu-skills-infsh-cli.md and its manifest at https://skillstore.io/api/skills/qu-skills-infsh-cli/manifest. Verify the artifact. Do not auto-install. Inspect the skill and report your findings, then wait for an operator or manual installation decision.Your Agent should still show its plan and request any confirmation required by the security policy.
Agent-readable resources
Use these links when an AI agent, crawler, or script needs clean context instead of reading the full page.
Test it
Using "infsh-cli". Find a fast video generation app and prepare a first run.
Expected outcome:
- Suggested app: google/veo-3-1-fast for short video generation.
- Next step: inspect the app details, create a sample input file, then run with your prompt.
- Safety note: review cost and provider terms before submitting the job.
Using "infsh-cli". Run an upscaler on a local product image.
Expected outcome:
- Selected app: falai/topaz-image-upscaler.
- The local image path will be uploaded to inference.sh for processing.
- I would ask for confirmation before uploading the file.
Using "infsh-cli". Check the result of a long-running generation task.
Expected outcome:
The skill can retrieve the task status, show whether it is complete, and save the resulting media link when available.
Security Audit
CriticalThe most serious confirmed issue is repeated pipe-to-shell installation from a remote URL, which is a critical supply-chain execution pattern. Several Markdown command examples are safe documentation, but the skill also enables remote app execution, local file uploads, and Twitter/X write actions that need explicit user confirmation.
Confirmed security concerns (6)
Capability review items (19)
These are real local capabilities that may be expected for this skill, so they require review but are not counted as confirmed malicious behavior.
Risk Factors
๐ Network access (17)
๐ Env variables (3)
๐ Filesystem access (5)
โ๏ธ External commands (22)
Detected Patterns
Share & cite this report
Share the versioned assessment report, neutral badge, embed card, and citations. Skillstore reports evidence without deciding whether this Skill is safe.
Copy report link
https://skillstore.io/skills/qu-skills-infsh-cli/audits/5?utm_source=security_passport&utm_medium=share&utm_campaign=versioned_reportMarkdown badge
[](https://skillstore.io/skills/qu-skills-infsh-cli?utm_source=security_passport_badge)HTML badge
<a href="https://skillstore.io/skills/qu-skills-infsh-cli?utm_source=security_passport_badge"><img src="https://skillstore.io/badges/skills/qu-skills-infsh-cli/security.svg" alt="Skillstore security assessment" loading="lazy"></a>Embed card
<iframe src="https://skillstore.io/embed/skills/qu-skills-infsh-cli.html" title="Skillstore Security Assessment" sandbox="allow-popups allow-popups-to-escape-sandbox" loading="lazy" referrerpolicy="no-referrer" width="420" height="180"></iframe>Academic citations (APA ยท BibTeX ยท CFF)
APA citation
qu-skills. (2026). infsh-cli security audit report (audit version 5) [Author version unspecified]. Skillstore. https://skillstore.io/skills/qu-skills-infsh-cli/audits/5BibTeX citation
@techreport{qu-skills-qu-skills-infsh-cli-2026,
author = {qu-skills},
title = {infsh-cli security audit report (audit version 5)},
institution = {Skillstore},
year = {2026},
number = {5},
url = {https://skillstore.io/skills/qu-skills-infsh-cli/audits/5},
note = {Author version unspecified}
}CITATION.cff
cff-version: 1.2.0
message: "If you use this Skill, cite its author and this versioned security audit report."
title: "infsh-cli security audit report (audit version 5)"
version: "unspecified"
type: report
authors:
- name: "qu-skills"
date-released: "2026-07-09"
url: "https://skillstore.io/skills/qu-skills-infsh-cli/audits/5"
identifiers:
- type: other
value: "skillstore:qu-skills-infsh-cli:audit:5"
description: "Skillstore immutable audit report identifier"
Compare variants
9 installable variantsEach author remains a separate installable skill. The recommended variant is ranked by Skillstore evidence.
Why this variant is first
inferen-sh-infsh-cli
2026-08-21
qu-skills-infsh-cli
2026-08-21
tool-belt-infsh-cli
2026-08-21
skillssh-infsh-cli
2026-08-21
inference-skills-infsh-cli
2026-08-21
inference-sh-skills-infsh-cli
2026-08-21
infsh-skills-infsh-cli
2026-08-21
101-skills-infsh-cli
2026-08-21
halt-catch-fire-infsh-cli
2026-08-21
Skillstore Score
Why this score Evidence Confidence: MediumWhat You Can Build
Generate media assets
Create images, videos, audio, or 3D assets from prompts using hosted inference.sh apps.
Run model experiments
Compare LLM, search, and media apps from one CLI during prototyping.
Automate cloud AI jobs
Submit long-running jobs, check task status, and save generated results for workflows.
Try These Prompts
Find inference.sh apps for image generation and explain which one fits a simple product mockup task.
Help me inspect an inference.sh app, create a sample input file, and run it with a short prompt.
Run an inference.sh app with a local image file. Show me the files that will be uploaded before execution.
Design a belt CLI workflow that submits a video generation job, returns the task ID, checks progress, and saves the final output.
Best Practices
- Confirm account, cost, and provider terms before running paid or third-party apps.
- Review every local file path before upload, especially private media or customer data.
- Require explicit approval before any Twitter/X posting, direct messaging, following, liking, or reposting.
Avoid
- Do not pipe remote install scripts to a shell without reviewing and verifying them.
- Do not place API keys, private prompts, or customer data directly in shared command history.
- Do not run social media write actions without a clear user request and final confirmation.
Frequently Asked Questions
What CLI does this skill use?
Does it require an inference.sh account?
Can it upload local files?
Can it post to Twitter/X?
Does it run apps locally?
Is raw installer execution required?
Developer Details
Author
qu-skillsLicense
MIT
Skillstore revision
r1
Version notice
The author did not declare a version.
Ref
3e4b6c31a74a3bd1a291c98cf585d720cb9fbc88
Maintenance freshness
7/18/2026
Usage
14 downloads ยท 0 views
File structure
๐ references/
๐ app-discovery.md
๐ authentication.md
๐ cli-reference.md
๐ running-apps.md
๐ SKILL.md